Multiple SQL injection vulnerabilities in GR Board (aka grboard) 1.8.6.5 Community Edition allow remote attackers to execute arbitrary SQL commands via the (1) tableType or (2) blindTarget parameter to view.php, (3) the delTargets[0] parameter to view_memo.php, or (4) the isReported parameter to write_ok.php.
References
Link | Resource |
---|---|
http://sirini.net/grboard/board.php?id=developer&articleNo=591 | Exploit URL Repurposed |
https://exchange.xforce.ibmcloud.com/vulnerabilities/75855 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2012-05-24T00:00:00
Updated: 2017-08-28T12:57:01
Reserved: 2012-05-23T00:00:00
Link: CVE-2011-5091
JSON object: View
NVD Information
Status : Modified
Published: 2012-05-24T00:55:01.240
Modified: 2024-02-14T01:17:43.863
Link: CVE-2011-5091
JSON object: View
Redhat Information
No data.
CWE